Hostnames |
es.quote.coverontrip.com winserver.coverontrip.com |
Domains | coverontrip.com |
Country | Spain |
City | Madrid |
Organization | arsys.es |
ISP | IONOS SE |
ASN | AS8560 |
Operating System | Windows Server 2022 (build 10.0.20348) |
-1586916577 | 2024-09-09T15:00:11.32755621 / tcp
220-FileZilla Server 1.8.2 220-Please visit https://filezilla-project.org/ 220 Hola 530 Login incorrect. 214-The following commands are recognized. NOP RNTO RNFR XPWD MDTM REST APPE MKD RMD DELE ALLO STOR SIZE CDUP CWD TYPE SYST MFMT MODE XRMD ADAT PROT PBSZ MLSD LIST XCWD NOOP AUTH OPTS EPRT PASS QUIT PWD RETR USER NLST CLNT FEAT ABOR HELP XMKD MLST STRU PASV EPSV PORT STAT 214 Help ok. 211-Features: MDTM REST STREAM SIZE MLST type*;size*;modify*;perm*; MLSD AUTH SSL AUTH TLS PROT PBSZ UTF8 TVFS EPSV EPRT MFMT 211 End
Certificate: Data: Version: 3 (0x2) Serial Number: 18:c6:3e:69:77:6a:db:d6:3e:61:cd:36:af:d8:59:5c:2e:81:10:a0 Signature Algorithm: ecdsa-with-SHA256 Issuer: CN=filezilla-server self signed certificate Validity Not Before: Jul 20 08:51:14 2024 GMT Not After : Jul 21 08:56:14 2025 GMT Subject: CN=filezilla-server self signed certificate Subject Public Key Info: Public Key Algorithm: id-ecPublicKey Public-Key: (256 bit) pub: 04:bf:75:59:8a:c7:6c:2f:e1:72:01:5a:e4:ea:f5: b3:14:c3:8a:19:e9:a6:c7:03:59:5b:f0:27:77:30: 7b:c1:56:33:70:ee:c2:a4:53:f9:2a:ca:36:e4:3b: eb:e3:d9:5b:9b:f4:3f:75:e6:a3:91:5e:c5:a3:d0: 5e:99:e2:1d:20 ASN1 OID: prime256v1 NIST CURVE: P-256 X509v3 extensions: X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Subject Alternative Name: DNS:winserver.coverontrip.com X509v3 Basic Constraints: critical CA:FALSE Signature Algorithm: ecdsa-with-SHA256 Signature Value: 30:45:02:21:00:d8:f9:4f:1a:1f:92:8b:3c:9b:d4:85:1d:52: 76:bb:81:ec:f8:99:b1:e4:36:df:c4:4a:3b:48:d2:89:e1:b8: 58:02:20:3c:dc:e9:76:1a:1e:b3:b2:c2:98:5c:60:96:f0:4f: b4:26:39:80:bb:98:2b:35:39:02:55:3f:cb:4c:03:33:43
703707298 | 2024-09-06T10:08:20.11388780 / tcp
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Sun, 22 May 2022 14:09:20 GMT Accept-Ranges: bytes ETag: "d73de387e56dd81:0" Server: Microsoft-IIS/10.0 X-Powered-By: ASP.NET Date: Fri, 06 Sep 2024 10:08:19 GMT Content-Length: 703
1489525118 | 2024-09-11T00:15:58.636073443 / tcp
HTTP/1.1 404 Not Found Content-Type: text/html; charset=us-ascii Server: Microsoft-HTTPAPI/2.0 Date: Wed, 11 Sep 2024 00:15:58 GMT Connection: close Content-Length: 315
Certificate: Data: Version: 3 (0x2) Serial Number: 01:62:48:f3:11:15:1e:41:a7:83:4d:01:57:30:38:48 Signature Algorithm: sha256WithRSAEncryption Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=Thawte TLS RSA CA G1 Validity Not Before: Dec 15 00:00:00 2023 GMT Not After : Dec 29 23:59:59 2024 GMT Subject: CN=es.quote.coverontrip.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:e6:76:2c:c3:20:66:ee:08:c5:44:10:b1:9f:f1: 8a:ef:03:05:03:75:c8:26:a6:15:dd:c5:8e:1d:61: 05:15:ed:47:f7:cc:9f:ab:73:fe:48:77:f2:d2:4d: ae:25:a8:7a:61:8f:af:61:0c:45:0f:2d:47:aa:60: 44:4d:b9:c6:33:a9:66:bd:60:ab:19:c5:3e:94:52: b0:9a:dc:33:eb:eb:b4:bf:5d:a8:d3:5c:9a:64:32: f7:aa:96:8b:e4:42:e6:33:68:98:82:ef:f5:24:b1: 04:7d:e2:5c:05:d0:f4:6b:5b:17:c5:9a:d6:2f:ac: c2:92:be:cd:57:8e:09:bd:0e:d3:ee:cd:41:30:83: c9:a5:43:06:df:31:a3:25:f9:39:06:e1:82:99:00: 8d:fa:e8:20:f3:c3:07:9d:2c:f2:15:3c:fb:a4:6b: f7:2a:90:5d:99:a0:14:b0:c5:8a:c5:bb:f3:86:b0: f4:d3:69:40:12:01:fd:54:b4:85:6e:c5:49:86:19: 18:a3:22:04:73:8d:b7:21:f6:d2:36:d7:e7:0f:21: 02:a1:f0:6f:07:33:c2:3d:c9:f7:ec:f2:6e:ee:d8: dc:99:ae:38:47:00:b5:f1:17:d8:4d:7d:e5:af:fc: 19:51:83:80:2a:d2:71:43:5a:23:9c:0d:55:fd:01: 46:51 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: A5:8C:FE:32:CC:EB:0F:2C:D4:19:C6:08:B8:00:24:88:5D:C3:C5:B7 X509v3 Subject Key Identifier: B7:93:65:50:04:C4:96:9A:1C:55:84:AC:79:CF:E6:09:B5:31:33:12 X509v3 Subject Alternative Name: DNS:es.quote.coverontrip.com X509v3 Certificate Policies: Policy: 2.23.140.1.2.1 CPS: http://www.digicert.com/CPS X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 CRL Distribution Points: Full Name: URI:http://cdp.thawte.com/ThawteTLSRSACAG1.crl Authority Information Access: OCSP - URI:http://status.thawte.com CA Issuers - URI:http://cacerts.thawte.com/ThawteTLSRSACAG1.crt X509v3 Basic Constraints: critical CA:FALSE CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2: 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B Timestamp : Dec 15 05:46:23.670 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:75:0E:02:F7:E8:3F:96:73:75:42:E9:B1: 21:88:D1:BC:90:62:7D:CA:F8:21:00:88:68:D4:BD:A0: 69:75:30:8F:02:20:6B:08:D8:01:A0:D8:BC:E3:20:42: 1E:BD:DC:F7:2D:5C:B6:FA:B2:F8:62:AC:6B:86:80:E4: D0:99:41:AD:D8:DF Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB: 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73 Timestamp : Dec 15 05:46:23.706 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:45:02:20:1A:1B:20:2A:C1:4E:4C:17:B8:B3:E2:6F: 9B:3E:37:5D:EE:70:04:15:1D:CF:4C:A9:75:3A:50:34: 6C:C4:65:FD:02:21:00:84:6D:6D:9E:D7:6C:04:39:8C: 8C:67:D0:76:FE:63:3C:1B:B2:82:06:25:BC:63:D4:BC: 7D:DB:36:18:0C:AB:13 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70: 91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB Timestamp : Dec 15 05:46:23.702 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:46:2A:4F:F2:37:31:BB:FC:36:07:5A:B6: 32:5C:93:C4:AA:E7:A7:58:B5:C1:85:B4:E8:D7:39:10: 10:AA:DD:32:02:20:22:97:62:A2:82:12:B0:EC:77:89: D5:11:C0:A8:5A:10:EB:44:A1:33:93:BA:48:A6:09:58: A3:47:41:73:21:98 Signature Algorithm: sha256WithRSAEncryption Signature Value: 39:4b:81:c1:18:e1:c6:17:d5:b5:54:13:97:36:c4:9f:87:1d: b6:37:72:8b:de:9a:1f:ca:8a:3a:5f:4f:38:bd:ab:9f:95:26: b5:7f:62:ee:42:b2:0a:62:e3:ed:05:05:1c:9b:da:2b:be:2f: 11:3e:b3:44:46:b6:e6:e0:91:62:01:99:0c:e9:9b:31:07:16: 0d:cb:3e:16:05:a1:24:72:9d:c8:33:cb:d7:21:82:22:52:2f: a5:d2:5f:44:a2:fe:18:07:4b:d8:5d:e8:2c:61:3b:96:79:62: 41:9b:77:a7:c2:2b:c4:1c:10:f0:85:97:4a:d1:12:19:5c:10: 2c:a2:b2:94:7f:66:2f:1d:fc:c2:43:c7:ac:39:cf:ad:5d:0a: c1:39:0c:18:21:fa:b5:3e:66:72:42:b1:a3:2e:fc:de:bd:2d: 3f:98:49:fc:05:8d:6f:80:75:da:e0:c6:03:01:20:19:25:48: 29:5d:dd:71:54:66:56:6c:f9:1b:c9:a8:10:51:a1:3a:2a:e2: ed:f5:b0:7d:58:56:95:bf:37:36:fc:6a:bb:5c:8b:ab:78:70: 05:9b:b8:dc:6b:b3:da:7d:70:a7:c3:d9:cd:e3:75:3a:a9:20: d2:77:eb:40:61:00:48:7c:fa:ee:7a:54:f0:48:59:a7:14:77: 99:c0:bc:31
-1277368491 | 2024-09-14T03:54:04.4640963389 / tcp
Remote Desktop Protocol \x03\x00\x00\x13\x0e\xd0\x00\x00\x124\x00\x02\x1f\x08\x00\x02\x00\x00\x00 Remote Desktop Protocol NTLM Info: OS: Windows Server 2022 OS Build: 10.0.20348 Target Name: 4FE0CC2 NetBIOS Domain Name: 4FE0CC2 NetBIOS Computer Name: 4FE0CC2 DNS Domain Name: 4FE0CC2.online-server.cloud FQDN: 4FE0CC2.online-server.cloud
Certificate: Data: Version: 3 (0x2) Serial Number: 75:18:3a:cf:ce:10:19:93:45:7c:31:3e:a1:d6:d9:d6 Signature Algorithm: sha256WithRSAEncryption Issuer: CN=4FE0CC2.online-server.cloud Validity Not Before: Jun 16 09:12:07 2024 GMT Not After : Dec 16 09:12:07 2024 GMT Subject: CN=4FE0CC2.online-server.cloud Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:bb:17:e3:b6:bb:b0:c3:00:76:c8:94:ae:a2:2e: 6f:96:84:cb:a3:f1:cd:e8:b3:d4:9c:04:be:3f:c7: cc:e1:3c:b1:7f:88:3b:ff:b8:ea:00:3f:b5:92:01: 62:4c:69:98:8f:ac:e8:85:fc:de:a4:db:c8:62:72: f5:24:31:c5:74:02:3e:3b:11:50:33:07:0f:33:54: b0:c7:08:48:d7:4d:aa:89:ca:7f:ce:62:e1:e9:2a: ff:5f:8d:1b:c7:ca:a9:4c:2b:80:c1:aa:63:37:a6: a7:ea:40:f6:63:84:6f:7c:d0:fc:6a:7c:e7:46:ae: e4:85:e7:32:e3:dd:2c:4c:4e:55:b9:4e:0e:9f:e9: 22:11:3a:84:7c:35:8b:0f:7b:86:97:60:4c:fe:92: 58:d6:4f:52:a9:f1:d2:3d:b9:14:5d:e2:c1:ad:2c: b2:da:a2:59:93:f1:97:3b:f5:36:d9:13:9b:9b:f3: 7b:94:fe:2e:83:60:fd:78:1b:0a:1a:3d:ac:fb:ef: a8:1c:ff:cf:80:29:f9:ee:69:b4:03:12:97:ac:00: ee:fb:e8:34:db:d9:5e:e5:c1:ed:7e:6a:62:eb:b4: 55:dc:26:61:b6:ad:51:99:ca:41:ee:96:13:6f:5a: c8:d3:a4:26:b2:1c:08:b2:fc:7c:a3:75:0b:e9:07: 1b:09 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Key Usage: Key Encipherment, Data Encipherment Signature Algorithm: sha256WithRSAEncryption Signature Value: 2d:77:9b:af:6b:bd:fe:38:c6:68:16:b9:fb:25:d3:32:67:fd: 1d:1c:45:ae:c6:20:7f:32:bb:eb:f8:11:f8:a3:a2:26:96:eb: 36:e8:5b:41:b3:90:cb:01:d5:c8:1a:74:ea:1e:9d:d2:a0:75: 9f:68:2c:dd:11:af:0b:5a:cc:2e:10:2e:17:fc:04:67:bd:b9: 5d:2e:ea:2c:03:f8:b5:df:53:ff:53:70:cb:8b:e1:60:d2:4d: bc:c6:1a:5d:54:94:86:39:1f:74:39:98:29:4d:1d:6e:62:4a: 7c:66:77:30:25:be:dd:21:17:c1:cf:09:c9:de:f7:53:75:04: cf:e9:2a:17:94:a8:aa:ae:c9:df:15:0c:82:b1:d5:1b:40:ec: 8d:ee:c4:e7:10:69:88:fd:1a:4e:86:21:22:18:ca:6f:3b:51: da:12:e6:57:68:6e:32:d9:4a:ae:f6:28:32:24:96:c9:d4:34: 7b:3b:5b:78:de:14:5a:f9:a6:e7:fa:41:da:75:2a:32:b9:49: c8:c5:f8:67:95:e5:5f:f1:ce:30:2e:48:be:00:a5:69:46:fe: 00:0d:b6:96:af:f7:f8:5a:88:ed:d8:a5:a8:58:15:a5:88:20: 11:b4:58:c4:1f:d6:91:6e:4f:75:0b:9c:62:08:e9:6e:40:e2: 38:e7:f8:a9